CVE-2025-64649
5.9
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N
Summary
IBM Concert 1.0.0 through 2.3.1 could allow a remote attacker to perform unauthorized actions using man in the middle techniques due to improper certificate validation.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| IBM | Concert | 1.0.0 <= 2.3.1 | affected |
Weaknesses
- CWE-295: CWE-295 Improper Certificate Validation
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.